NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
11259 | CVE-2011-4961 | SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6 allows remote authenticated users with the EDIT_PERMISSIONS permission to gain administrator privileges via a TreeMultiselectField that includes admin groups when adding a user to the selected groups. | 2 | 6 | Medium | 2017-01-07 | 2012-10-15 | View | |
76795 | CVE-2000-0553 | Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping "return-rst" and "keep state" rules, allows remote attackers to bypass access restrictions. | 2 | 2.6 | Low | 2017-01-05 | 2008-09-05 | View | |
11515 | CVE-2011-5259 | SQL injection vulnerability in lib/controllers/CentralController.php in OrangeHRM before 2.6.11.2 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2013-02-13 | View | |
77051 | CVE-2000-0810 | Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack. | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View | |
11771 | CVE-2010-0196 | Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0192 and CVE-2010-0193. | 2 | 9.3 | High | 2017-01-18 | 2010-08-21 | View |
Page 17352 of 17672, showing 5 records out of 88360 total, starting on record 86756, ending on 86760